Secret State Leakage Attacks and Their Impacts on EMV Contactless Payment Apps.
Jesse Chen, Rubin Yuchan Yang, Ahmad Musa, Syed Rafiul Hussain, Omar Chowdhury, Sazzadur Rahaman.
The IEEE Security and Privacy (Oakland'26). Oakland, California, USA. May, 2026.
Attacking the First-Principle: A Black-Box Query-Free Targeted Mimicry Attack on Binary Function Classifiers.
Gabriel Sauger, Jean-Yves Marion, Sazzadur Rahaman, Vincent Tourneur, Muaz Ali, Victor Matrat.
The European Symposium on Security and Privacy (Euro S&P'26). Lisbon, Portugal. July, 2026.
GraphQLify: Automated and Type Safety-Preserving GraphQL API Adoption.
Saleh Amareen, Arif Rahman, Sazzadur Rahaman, Amiangshu Bosu.
The ACM International
Conference on the Foundations of Software Engineering (FSE). Montreal, Canada. July, 2026.
On the Characteristics and Impacts of Protestware Libraries.
Tanner Finken*, Jesse Chen*, Sazzadur Rahaman.
The ACM International Conference on the Foundations of Software Engineering (FSE). Trondheim, Norway. June, 2025. (*: co-first authors)
Does Stylomery Really Survive Compilation? Binary Code Stylometry Revisited.
Muaz Ali, Tugay Bilgis, N. Beyza Bozdag, Saumya Debray, Sazzadur Rahaman.
25th Privacy Enhancing Technologies Symposium (PETS 2025). Washington, DC, USA and Online. July, 2025.
On the Contents and Utility of IoT Cybersecurity Guidelines.
Jesse Chen, Dharun Anandayuvaraj, James Davis, Sazzadur Rahaman.
ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering (ESEC/FSE). Porto de Galinhas, Brazil. July, 2024.
Impeding LLM-assisted Cheating in Introductory Programming Assignments via Adversarial Perturbation.
Saiful Islam Salim*, Rubin Yuchan Yang*, Alexander Cooper*, Suryashree Ray, Saumya Debray, Sazzadur Rahaman.
The 2024 Conference on Empirical Methods in Natural Language Processing (EMNLP). Miami, Florida. November, 2024. (*: co-first authors)
Trust, Because You Can't Verify: Privacy and Security Hurdles in Education Technology Acquisition Practices.
Easton Kelso, Ananta Soneji, Sazzadur Rahaman, Yan Soshitaishvili, Rakibul Hasan.
ACM Conference on Computer and Communications Security (CCS'24). Salt Lake City, Utah, USA. October 2024.
Bilingual Problems: Studying the Security Risks Incurred by Native Extensions in Scripting Languages.
Cristian-Alexandru Staicu, Sazzadur Rahaman, Ágnes Kiss, Michael Backes.
32nd USENIX Security Symposium. Anaheim, CA, USA. August, 2023.
The Queen’s Guard: A Secure Enforcement of Fine-grained Access Control In Distributed Data Analytics Platforms.
Fahad Shaon*, Sazzadur Rahaman*, Murat Kantarcioglu (* co-first authors)
The Annual Computer Security Applications Conference (ACSAC). Austin, Texas, USA. December, 2023.
A Tale of Reduction, Security and Correctness: Evaluating Program Debloating Paradigms and Their Compositions.
Muaz Ali, Muhammad Muzammil, Faraz Karim, Ayesha Naeem, Rukhshan Haroon, Muhammad Haris, Huzaifa Nadeem, Waseem Sabir,
Fahad Shaon, Fareed Zaffar, Vinod Yegneswaran, Ashish Gehani and Sazzadur Rahaman.
28th European Symposium on Research in Computer Security (ESORICS). Hague, Netherlands. September, 2023.
Optimization to the Rescue: Evading Binary Code Stylometry with Adversarial Use of Code Optimizations.
Ben Jacobsen, Sazzadur Rahaman, Saumya Debray.
The CheckMATE workshop at the ACM Conference on Computer and Communications Security (CCS'21). Virtual Conference, November 2021.
From Theory to Code: Identifying Logical Flaws in Cryptographic Implementations.
Sazzadur Rahaman, Haipeng Cai, Omar Chowdhury and Danfeng (Daphne) Yao.
IEEE Transactions on Dependable and Secure Computing (TDSC). 2021.
Coding Practices and Recommendations of Spring Security for Enterprise Applications.
Mazharul Islam, Sazzadur Rahaman, Na Meng, Behnaz Hassanshahi, Padmanabhan Krishnan, Danfeng (Daphne) Yao.
IEEE Secure Development Conference. Atlanta, GA, September 2020.
Security Certification in Payment Card Industry: Testbeds, Measurements, and Recommendations.
Sazzadur Rahaman, Gang Wang, Danfeng (Daphne) Yao.
ACM Conference on Computer and Communications Security (CCS'19). London, United Kingdom. November 2019.
CryptoGuard: High Precision Detection of Cryptographic Vulnerabilities in Massive-sized Java Projects.
Sazzadur Rahaman, Ya Xiao, Sharmin Afrose, Fahad Shaon, Ke Tian, Miles Frantz, Murat Kantarcioglu, Danfeng (Daphne) Yao.
ACM Conference on Computer and Communications Security (CCS'19). London, United Kingdom. November 2019.
Provably Secure Anonymous-yet-Accountable Crowdsensing with Scalable Sublinear Revocation.
Sazzadur Rahaman, Long Cheng, Danfeng (Daphne) Yao, He Li, and Jung-Min (Jerry) Park.
The 17th Privacy Enhancing Technologies Symposium (PETS). Minneapolis, MN, USA. July, 2017.